Type |
- |
Arbitrary code execution |
+ |
Sandbox escape |
|
Description |
- |
A use after free security issue has been found in the extensions component of the Chromium browser before version 90.0.4430.72. |
+ |
Use after free in extensions in Google Chrome prior to 90.0.4430.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. |
|
References |
|
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_14.html |
|
https://crbug.com/1188889 |
|
Notes |
|